CVE-2016-9031
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.49%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An exploitable integer overflow exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ADD_ENTRIES when dealing with 32-bit file systems. An attacker can craft an input that can cause a kernel panic and potentially be leveraged into a full privilege escalation vulnerability. This vulnerability is distinct from CVE-2016-8733.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
- EPSS
- 0.49% probability · 41th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- joyent/smartos
- Source
- talos-cna@cisco.com
References
- http://www.securityfocus.com/bid/94921Broken Link, Third Party Advisory, VDB Entry
- http://www.talosintelligence.com/reports/TALOS-2016-0249/Exploit, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/94921Broken Link, Third Party Advisory, VDB Entry
- http://www.talosintelligence.com/reports/TALOS-2016-0249/Exploit, Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.